Our Services
 

Governance Risk & Compliance

 
SDG GRC ensures that exchange of information is secure and compliant. GRC mitigates information security threats internally and externally by creating a scalable eco-system of people, processes and technology.
 
SDG GRC's view of Information Security
SDG GRC brings a holistic approach to information security, by empowering business stakeholder’s view of the business risk. We unify traditional silos of security including Network & Infrastructure security, Application security, SOA security, Compliance and Enterprise Identity & Access Management. This unified view of Information Security gives a CXO or business stakeholder real time visibility into the enterprise risk and associated controls in place for corporate assets.
  • Application Security
    • Enterprise Application Security Program.
    • Application Security Architecture and Design Reviews
    • Secure DLC
    • Application Security Code Reviews
    • Application Security Assessment
    • Application Security QA Testing
    • Application Security CoE
         
  • Infrastructure Security
    • Managed Security Posture Testing
    • Vulnerability Assessment
    • Penetration Testing
    • Security Policy – planning, architecture review and Implementation
    • Managed infrastructure security
    • Network Security Architecture review
    • Wireless security
       
  • Risk Management
    • Information Security reviews and assessment
    • ISMS compliance reviews and audit
    • CoBIT based security audit, Internal audits
    • Business continuity and Disaster recovery
       
  • Education and Training
    • Application Security Assessment
    • Secure Source Code Review
    • Application Security Essentials
    • Building an Enterprise Application Security Program
    • Custom Security Awareness program